LIBRISTO
LIBROAMANTO
mandatory
Become part of a community of book lovers from all over the world and get access to a whole bunch of benefits. Create an account for free
0
Free delivery for purchases over 69.99 €
DPD courier 5.99 Bpost point 7.99 Bpost 7.49 DPD point 3.49 GLS courier 4.49

Free delivery for orders over 69.99 euro.

Trivy for Kubernetes & DevSecOps

Build Secure Container Pipelines with SBOM, Supply Chain Scanning & CI/CD Automation Using GitHub Actions, Jenkins, ArgoCD, Terraform & Helm

Language EnglishEnglish
Book Paperback
Book Trivy for Kubernetes & DevSecOps Alira Vexel
Libristo code: 51440510
Publishers Independently published, March 2026
Trivy for Kubernetes & DevSecOpsBuild Secure Container Pipelines with SBOM, Supply Chain Scanning &... Full description
? points 69 b New New
28.32
In stock at our supplier Shipping in 9-15 days

30-day return policy


Customers also purchased


Las parteras de Egipto Isaías Hernando Chicote / Book Paperback
common.buy 18.81
Arkusz kalkulacyjny Excel od podstaw Bożena Borowska / Book Paperback
common.buy 13.75
Coming soon New
Umgang mit Low Performern Alfons Labisch / Book Paperback
common.buy 85.69
Ulmowie wyd. II. Sprawiedliwi i błogosławieni Agnieszka Bugała / Book Paperback
common.buy 12.43
New
Trombamicizia Lucas Dridik / Book Paperback
common.buy 14.66
New
Trojanische Pferde Peter Dunsch / Book Paperback
common.buy 30.44

Trivy for Kubernetes & DevSecOps

Build Secure Container Pipelines with SBOM, Supply Chain Scanning & CI/CD Automation Using GitHub Actions, Jenkins, ArgoCD, Terraform & Helm

Modern software delivery is fast.
Attack surfaces are faster.

Container images, Helm charts, Terraform modules, CI pipelines, and GitOps promotions form a complex supply chain - and every stage is a potential entry point for risk.

This book does not teach isolated Trivy commands.
It teaches you how to design and operate a production-grade DevSecOps control system.

What This Book Delivers

You will build a complete, real-world security architecture:

Repository
→ Container Build (Immutable Digest)
→ Vulnerability Scan
→ SBOM Generation (CycloneDX & SPDX)
→ Helm Render Validation
→ Misconfiguration & Secret Detection
→ Policy-Based Gating
→ GitOps Promotion with ArgoCD
→ Audit-Ready Evidence Pack
→ Continuous Validation & Security Debt Reduction

Every chapter connects to this system spine.
Nothing is fragmented. Nothing is theoretical.

What Makes This Book Different

Most DevSecOps guides:

  • Explain what SBOM is
  • Show a few Trivy examples
  • Provide disconnected CI snippets
  • Avoid real governance design

This book goes further.

You will implement:

  • Deterministic PR gates with SARIF integration
  • Enterprise-grade Jenkins release pipelines
  • Terraform misconfiguration scanning with real guardrails
  • Helm pre-deploy security validation
  • Expiry-based exception governance
  • Break-glass workflows with audit traceability
  • Digest-only production deployments
  • Evidence bundles with policy snapshots and checksums
  • Zero-to-production rollback validation
  • Multi-environment promotion discipline using ArgoCD

This is not "scan and hope."
It is structured enforcement.

Built for Real Operators

This book is written for:

  • DevOps Engineers
  • Platform Engineers
  • SREs
  • Security Engineers (AppSec / CloudSec)
  • Cloud Architects
  • Technical Leaders building internal DevSecOps standards

It assumes you want depth - not surface-level summaries.

There are no "What is Kubernetes?" chapters.
There are no toy examples.
Every workflow is production-aligned.

Fully Modern & 2026-Ready

You will work with current, real-world tooling:

  • Trivy for image, filesystem, repo, and Kubernetes scanning
  • GitHub Actions for PR security gates
  • Jenkins for enterprise release orchestration
  • Terraform for infrastructure-as-code validation
  • Helm for controlled application delivery
  • ArgoCD for GitOps promotion enforcement
  • SBOM-first supply chain governance

The final capstone builds a complete, audit-ready DevSecOps platform from scratch.

What You Will Walk Away With

After completing this book, you will have:

  • A repeatable security architecture you can deploy immediately
  • Copy-paste CI/CD templates ready for production
  • Governance patterns with expiry-based exceptions
  • A measurable security debt reduction model
  • A roadmap for enterprise scaling (policy-as-code, attestations, multi-cluster governance)
  • A standalone DevSecOps blueprint suitable for serious environments

Security is not a scanner.
It is a workflow.
It is a promotion discipline.
It is a contract between build, release, and runtime.

This book gives you the architecture to enforce that contract.

If you build Kubernetes platforms, operate CI/CD systems, or are responsible for container supply chain integrity, this manual will become your operational reference.

Actress & Polyglot
EWA KASP for
Play video
Ewa Kasp
Libristo has the largest selection of foreign-language books. That’s why I buy my books there.

About the book

Full name Trivy for Kubernetes & DevSecOps
Author Alira Vexel
Language English
Binding Book - Paperback
Date of issue 2026
Number of pages 408
EAN 9798251053159
Libristo code 51440510
Weight 943
Dimensions 216 x 280 x 21
Give this book today
It's easy
1 Add to cart and choose Deliver as present at the checkout 2 We'll send you a voucher 3 The book will arrive at the recipient's address

You might also be interested in


Hypnosis Without Trance JAMES TRIPP / Book Paperback
common.buy 26.50
Lonely Planet Pocket Valencia Lonely planet eng / Book Paperback
common.buy 17.39
Liturgies of the Wild Martin Shaw / Book Hardback
common.buy 23.36
Coming soon New
Tropical Living / Book Hardback
common.buy 45.22

Login

Log in to your account. Don't have a Libristo account? Create one now!

 
mandatory
mandatory

Don’t have an account? Discover the benefits of having a Libristo account!

With a Libristo account, you'll have everything under control.

Create a Libristo account